[gnutls-devel] Regression in gnutls-3.2.2: server accepts clients without a certificate

Nikos Mavrogiannopoulos nmav at gnutls.org
Thu Aug 29 13:24:27 CEST 2013


On Wed, Aug 28, 2013 at 11:18 PM, Petr Pisar <petr.pisar at atlas.cz> wrote:

> Hello,
> I've found a regression between 3.2.1 and 3.2.2. `gnutls-serv -r' used to
> refuse TLS clients without a valid certificate, this is not true in GnuTLS
> 3.2.2 anymore.
>
> I tried to find the faulty commit in git tree, but server compiled from the
> git tag gnutls_3_2_1 behaves differently then the one from 3.2.1 tar ball.
> I observe the regression with my application that uses GnuTLS library too.
>

Thank you for reporting that. I've committed a fix in the repository and
added a test case to avoid this regression from occurring again.

regards,
Nikos
-------------- next part --------------
An HTML attachment was scrubbed...
URL: </pipermail/attachments/20130829/3a7bd218/attachment.html>


More information about the Gnutls-devel mailing list